Local users get to play root?

Richard Hughes hughsient at gmail.com
Wed Nov 18 23:12:00 UTC 2009


2009/11/18 Eric Christensen <eric at christensenplace.us>:
> Has anyone drafted a notice to go out on the Announce List explaining
> this vulnerability?  If admins don't know to fix/remove PK then they are
> putting their systems at risk.

I'm really bored of this conversation. The bikeshed is blue. There are
much bigger problems in UNIX security than installing signed packages.
We don't set a grub password by default.

Richard.




More information about the fedora-devel-list mailing list